๐จ๐ญ
4server
2026-08-22 20:49:49
(18 minutes ago)
[SatAug2222:49:47.0129632026][security2:error][pid4023211:tid4023634][client172.71.122.128:0]ModSecu ...
show more
[SatAug2222:49:47.0129632026][security2:error][pid4023211:tid4023634][client172.71.122.128:0]ModSecurity:Accessdeniedwithcode403\(phase1\).Matchedphrase\".git\"atREQUEST_URI.[file\"/etc/apache2/conf.d/modsec_custom_rules.conf\"][line\"610\"][id\"960720\"][msg\"Forbiddenfileaccess\"][hostname\"webmail.verticalti.ch\"][uri\"/.git/config\"][unique_id\"aooLa5CABPu7at6Fkjn6GgAAAMQ\"]
show less
Hacking
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 18:59:09
(2 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 14:59:01.433232 2026] [security2:error] [pid 6504:tid 6504] [client 172.71.122.128:13621] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "www.correeo.gisur.com"] [uri "/.git/config"] [unique_id "aonxdUsiaATTETnREPDsjQAAAAI"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-22 12:59:49
(8 hours ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sat Aug 22 08:59:44.216720 2026] [security2:error] [pid 27987:tid 27987] [client 172.71.122.128:12585] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webdisk.ranbarker.com"] [uri "/.git/HEAD"] [unique_id "aomdQL4iX4R_fq5cU8sVUAAAABA"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐ง๐ช
madeit
2026-08-21 16:58:56
(1 day ago)
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-21 02:41:35
(1 day ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 22:41:27.773881 2026] [security2:error] [pid 12800:tid 12800] [client 172.71.122.128:13373] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "webmail.lyldevelopers.com"] [uri "/.git/HEAD"] [unique_id "aoe61ysIosxysrpEPAzDLgAAAAQ"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-20 17:06:11
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Thu Aug 20 13:06:02.855715 2026] [security2:error] [pid 31698:tid 31698] [client 172.71.122.128:10158] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.uphillfarmvt.com"] [uri "/.git/config"] [unique_id "aocz-pAlPQ8miiJjYqtAwAAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-19 23:11:34
(2 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Wed Aug 19 19:11:27.513259 2026] [security2:error] [pid 23159:tid 23159] [client 172.71.122.128:12394] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "watongalodging.com"] [uri "/.git/HEAD"] [unique_id "aoY4H-QecGHIP4dYF5oq7AAAAAU"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 12:52:39
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 08:52:35.785702 2026] [security2:error] [pid 28067:tid 28067] [client 172.71.122.128:11253] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "autodiscover.aboutio.com"] [uri "/.git/config"] [unique_id "aoRVk9S7psPL3uQQgQrzDgAAAAM"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 09:26:27
(4 days ago)
(mod_security) mod_security (id:949110) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:949110) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 05:26:24.116469 2026] [security2:error] [pid 17707:tid 17707] [client 172.71.122.128:12449] ModSecurity: Access denied with code 403 (phase 2). Operator GE matched 5 at TX:anomaly_score. [file "/etc/apache2/conf.d/modsec_vendor_configs/OWASP3/rules/REQUEST-949-BLOCKING-EVALUATION.conf"] [line "30"] [id "949110"] [msg "Inbound Anomaly Score Exceeded (Total Score: 5)"] [severity "CRITICAL"] [tag "application-multi"] [tag "language-multi"] [tag "platform-multi"] [tag "attack-generic"] [hostname "autodiscover.21oaksfarm.com"] [uri "/.git/HEAD"] [unique_id "aoQlQN2GRxRqrohdtbUOLwAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 04:24:17
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Tue Aug 18 00:24:13.572838 2026] [security2:error] [pid 28837:tid 28837] [client 172.71.122.128:9505] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.platinumkissband.com"] [uri "/.git/HEAD"] [unique_id "aoPebSKTYiA0wzvBmixF3gAAAAg"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-18 01:37:47
(4 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 21:37:40.398004 2026] [security2:error] [pid 5538:tid 5538] [client 172.71.122.128:12385] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "120"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpanel.kontikimotorcycles.com"] [uri "/.git/config"] [unique_id "aoO3ZNFQ339fOCvFaHLLbAAAAAw"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 13:59:49
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 09:59:43.032633 2026] [security2:error] [pid 14168:tid 14168] [client 172.71.122.128:12801] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cartoondelivery.com"] [uri "/.git/HEAD"] [unique_id "aoMTzyMOqH63JHOhM4j2CgAAABs"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-17 08:38:23
(5 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Mon Aug 17 04:38:14.335127 2026] [security2:error] [pid 12635:tid 12635] [client 172.71.122.128:12244] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "caalmconsulting.com"] [uri "/.git/HEAD"] [unique_id "aoLIdjTlyTPMADOY0njlbwAAABE"]
show less
Brute-Force
Bad Web Bot
Web App Attack
๐บ๐ธ
TPI-Abuse
2026-08-16 05:43:01
(6 days ago)
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Por ...
show more
(mod_security) mod_security (id:210492) triggered by 172.71.122.128 (-): 1 in the last 300 secs; Ports: *; Direction: 1; Trigger: LF_MODSEC; Logs: [Sun Aug 16 01:42:54.613907 2026] [security2:error] [pid 30978:tid 30995] [client 172.71.122.128:9983] ModSecurity: Access denied with code 403 (phase 1). Matched phrase "/.git/" at REQUEST_URI. [file "/etc/apache2/conf.d/modsec_vendor_configs/comodo_apache/02_Global_Generic.conf"] [line "117"] [id "210492"] [rev "3"] [severity "CRITICAL"] [tag "CWAF"] [tag "Generic"] [hostname "cpcontacts.marinkovich.us"] [uri "/.git/HEAD"] [unique_id "aoFN3iaG0mm0q8dHph1pywAAAE8"]
show less
Brute-Force
Bad Web Bot
Web App Attack
Anonymous
2026-08-07 01:57:10
(2 weeks ago)
2026-08-07T03:57:09.278764+02:00 nimbus sshd[380327]: Invalid user postgres from 172.71.122.128 port ...
show more
2026-08-07T03:57:09.278764+02:00 nimbus sshd[380327]: Invalid user postgres from 172.71.122.128 port 54965
...
show less
Brute-Force
SSH